Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
tendacn ac10 firmware vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2018-14492
Tenda AC7 through V15.03.06.44_CN, AC9 through V15.03.05.19(6318)_CN, and AC10 through V15.03.06.23_CN devices have a Stack-based Buffer Overflow via a long limitSpeed or limitSpeedup parameter to an unspecified /goform URI.
Tendacn Ac7 Firmware
Tendacn Ac9 Firmware
Tendacn Ac10 Firmware
Tendacn Ac15 Firmware
Tendacn Ac18 Firmware
8.8
CVSSv3
CVE-2018-16334
An issue exists on Tenda AC9 V15.03.05.19(6318)_CN and AC10 V15.03.06.23_CN devices. The mac parameter in a POST request is used directly in a doSystemCmd call, causing OS command injection.
Tendacn Ac10 Firmware
Tendacn Ac9 Firmware 15.03.05.19
7.5
CVSSv3
CVE-2018-16333
An issue exists on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server. While processing the ssid parameter for a POST re...
Tendacn Ac18 Firmware
Tendacn Ac15 Firmware 15.03.05.19
Tendacn Ac10 Firmware 15.03.06.23
Tendacn Ac9 Firmware 15.03.05.19
Tendacn Ac7 Firmware 15.03.06.44
1 Github repository
7.5
CVSSv3
CVE-2022-26243
Tenda AC10-1200 v15.03.06.23_EN exists to contain a buffer overflow in the setSmartPowerManagement function.
Tendacn Ac10 Firmware 15.03.06.23
9.8
CVSSv3
CVE-2023-37144
Tenda AC10 v15.03.06.26 exists to contain a command injection vulnerability via the mac parameter in the function formWriteFacMac.
Tendacn Ac10 Firmware 15.03.06.26
9.8
CVSSv3
CVE-2021-38278
Tenda AC10-1200 v15.03.06.23_EN exists to contain a buffer overflow via the urls parameter in the saveParentControlInfo function.
Tendacn Ac10 Firmware 15.03.06.23
7.5
CVSSv3
CVE-2021-38772
Tenda AC10-1200 v15.03.06.23_EN exists to contain a buffer overflow via the list parameter in the fromSetIpMacBind function.
Tendacn Ac10 Firmware 15.03.06.23
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
deserialization
CVE-2024-4541
CVE-2024-3080
CVE-2024-4787
log injection
CVE-2024-5967
inject
CVE-2024-30078
CVE-2024-5899
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started